[Openswan Users]
Paul Wouters
paul at xelerance.com
Wed May 10 16:01:33 CEST 2006
On Wed, 10 May 2006, Brian Candler wrote:
> (*) Note that if you use aggressive mode, you can use a different pre-shared
> key for each endpoint. That is, the IKE exchange also includes an identity
> (which could be an FQDN or E-mail address), and you can use this to select
> the appropriate secret. Many VPN solutions are built on this.
And can be ikecrack'ed
Paul
--
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155
More information about the Users
mailing list